Why this Google Docs phishing attack is particularly sneaky

If you’ve received an invitation to join a shared Google Doc that you weren’t expecting, you might want to steer clear of it. It’s probably a phishing scam that could compromise your account.

Internet users everywhere are being spammed with what appear to be malicious invitations to log on to their Google accounts. Unlike your garden-variety cyberattack, many of the telltale signs that could tip you off that something is awry are absent.

For example, the attack appears to work by tricking you into logging into your actual Google account, then granting a third party (your attacker) access to your account’s data. Having gained permission to access your contacts, the attacker then fires off spam invites to everyone in your address book.

What makes this attack so tricky to detect is that it takes advantage of Google’s legitimate tool for sharing data with responsible third-party apps. Since the bogus invitation is being routed through Google’s real system, nothing is misspelled, the icons look accurate, and it’s hard to know something’s gone wrong until it’s too late.

Google said Wednesday that it is working to ensure this type of “spoofing” doesn’t happen again.

“We have taken action to protect users against an email impersonating Google Docs, and have disabled offending accounts,” the company said in a statement.

Staff at The Washington Post, students at New York University and even workers at the U.S. Agency for International Development have received warnings from IT administrators not to open the emails. Here is one such notice, obtained by The Post.

Here’s one clue for identifying the fraudulent email: Included on the string of recipients is an email address that begins “hhhhhhhhhhhhhh” and ends in “mailinator.com,” a website that lets visitors obtain a temporary and disposable email address.

So, until you hear otherwise, it’s probably best to hold off on any Google Docs usage for now. If you’ve clicked the link in the malicious email, you can revoke the attacker’s access by visiting …

https://myaccount.google.com/permissions

… and deleting the “Google Docs” app – which is the one pretending to be legitimate.

A spokesperson for Google didn’t immediately respond to a request for comment.

Local News

Piedmont Athens Regional and Akins Ford partner to enhance breast health services

Local News

Johnson named Sales Executive of the Month for January

Local News

Tickets on sale this week for Lake Country Players’ latest production

Local News

Friday, March 14 Breeze will be delayed

Local News

Greene Chamber welcomes Lake Country Books and Gifts

Local News

Zeb Hartline named director of Culinary Operations for Reynolds Lake Oconee

Local News

Second Harvest food distribution March 15

Local News

Brooke Adams joins Coldwell Banker Lake Oconee Realty/Lake Country

Community

New CASA board members

Local News

Bulldogs Battling Breast Cancer raises $245,000 for St. Mary’s Breast Health Services

Local News

Rotary Week 4 raffle winner

Local News

Record-breaking Heart and Soul Gala raises over $800,000 for Good Samaritan Hospital

Call To Worship

Lenten season offerings at Church of the Redeemer

Community

Baskets of Hope bringing Easter joy to local foster and disadvantaged children

Local News

St. Mary’s new Ion robot makes lung cancer biopsies faster, safer

Local News

Rotary Week 3 winner

Local News

The greatest hits of the ‘70s coming to Festival Hall to Benefit Circle of Love Center

Local News

Coldwell Banker Lake Oconee Realty celebrates Brian Quinn as top real estate agent in Georgia

Local News

Reynolds Lake Oconee announces 3rd Quarter 2024 Employee Awards

Local News

KofC new Sir Knights of Assemble 3799 Christ Our King and Savior Church

Local News

Artist Bonnie Beauchamp-Cookie brings evocative style to ‘Equipoise’ exhibit at Madison-Morgan Cultural Center

Local News

BBB: Scammers impersonating road toll collection services

Local News

Seuss on the Loose festival March 1

Local News

Rotary Week 1 raffle winner